EAST Search History 



Ref 

# 


Hits 


Search Query 


DBS 


Default 
Operator 


Plurals 


Time Stamp 


LI 


U 


data. elm. and process$4.clm. and 
dynamical$3.clm. and protect$3. 
dm. and damage.clm. and 
joumal$3.clm. and virus.clm. and 
restor$3.clm. and execut$3.clm. 
and audit$3.clm. 


Ub-rbrUB, 
USPAT 


UK 


Orr 


Trtr»£/in/TO 1T.C"7 

20Uo/lU/2y IZ.b/ 


L2 


26 


data and process$4 and 
dynamical$3 and protect$3 and 
damage and journal$3 and virus 
and restor$3 and execut$3 and 
audit$3 


US-PGPUB; 

USPAT; 

USOCR; 

FPRS; 

EPO; JPO; 

DERWENT; 

IBM_TDB 


OR 


OFF 


2006/10/29 12:58 


L3 


69 


726/24 


US-PGPUB; 

USPAT; 

USOCR; 

FPRS; 

EPO; JPO; 

DERWENT; 

IBM_TDB 


OR 


OFF 


2006/10/29 12:58 


L4 


3295 


726/22 or 726/226 or 713/187 or 
71j/loo or /iH/oo 


US-PGPUB; 

1 ICO AT". 

USPAT; 

USOCR; 

FPRS; 

EPO; JPO; 

DERWENT; 

IBM_TDB 


OR 


OFF 


2006/10/29 12:58 


L5 


58 


4 and 3 


US-PGPUB; 

1 if*r^ AT- 

USPAT; 

USOCR; 

FPRS; 

EPO; JPO; 

DERWENT; 

IBM_TDB 


OR 


OFF 


2006/10/29 12:59 


L6 


3307 


4 or 3 


US-PGPUB; 

USPAT; 

USOCR; 

FPRS; 

EPO; JPO; 

DERWENT; 

IBM_TDB 


OR 


OFF 


2006/10/29 12:59 


L7 


1 


6 and 2 


US-PGPUB; 

UorA 1 , 

USOCR; 
FPRS; 
EPO; JPO; 
DERWENT; 
IBM_TDB 


OR 


OFF 


2006/10/29 12:59 



10/29/06 1:00:04 PM 

C:\Documents and Settings\K2and\My Documents\EAST\Workspaces\default.wsp 



Page 1 



EAST Search History 



L8 



37 



simmer. I nv. 



US-PGPUB; 

USPAT; 

USOCR; 

FPRS; 

EPO; JPO; 

DERWENT; 

IBM TDB 



OR 



OFF 



2006/10/29 12:59 



10/29/06 1:00:04 PM 

C:\Documents and Settings\KZand\My Documents\EAST\Workspaces\default.wsp 



Page 2 



Results (page 1): data and process$4 and dynamical$3 and protect$3 and damage and jour... Page 1 of 6 



■lili 



IJSPTO 



Subscribe (Full Service) Register (Limited Service. Free) Login 

Search: The ACM Digital Library C The Guide 
[data and process$4 and dynamical$3 and protect$3 and damai 1^ 



§^ Feedback ReporLapjobjeiD. .Sath 



Terms used 

data and process$4 and dynamical$3 and protect$3 and damage and journal$3 and virus and restor$3 and e; 



Sort results by | relevance I^mF 



Display results | expanded form ^ 
Results 1 - 20 of 39 



^ Save results to a Binder 
^ Search Tips 

□ Open results in a new window 



Try an .Advanced. Sea 
Try this search in The 



Result page: 1 2 next 



^ Making.pperating..syst^^^ 

^ Michael M. Swift, Brian N, Bershad, Henry M. Levy 

^ October 2003 Proceedings of the nineteenth ACM symposium on Operating systems princif: 
Publisher: ACM Press 



Full text available: "^.Ddgasa JS. KB) 



Additional Information: fu[J„cjMiQn, abstract, references, citings, inde 



Despite decades of research in extensible operating system technology, extensions such as dev 
significant cause of system failures. In Windows XP, for example, drivers account for 85% of re< 
failures. This paper describes Nooks, a reliability subsystem that seeks to greatly enhance OS n 
the OS from driver failures. The Nooks approach is practical: rather than guaranteeing complete 
through a new (and incompatible) OS ... 



Keywords: I/O, device drivers, protection, recovery, virtual memory 



^ Session. 1:.ACJ:..attac^^^ 
Jintao Xiong 

October 2004 Proceedings of the 2004 ACM workshop on Rapid malcode 
Publisher: ACM Press 

Full text available: ■^i)dfC283,Z?..KB) Additional Information: MLcitatjcn, abstract, Merences, indexterms 

Modern society is highly dependent on the smooth and safe flow of information over communicc 
networks. Computer viruses and worms pose serious threats to the society by disrupting the no 
and collecting or destroying information without authorization. Compared to the effectiveness a 
worms and viruses, currently adopted defense schemes are slow to react and costly to impleme 

This paper proposes an automated email virus detecti ... 
Keywords: contact tracing, transmission chain, worm defense 
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Micha Moffie, David Kaeli 



December 2005 ACM SIGARCH Computer Architecture News, Volume 33 issue 5 
Publisher: ACM Press 

Full text available: ■^pdfQ^.MS.KB) Additional Information: fyJi citatjpn, abstract, references, jndex terms 
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Our Application Security Monitor (ASM) is a run-time monitor that dynamically collects executio, 
part of a security framework that will allow us to explore different security policies aimed at idei 
behavior such as Trojan horses and backdoors Jn this paper, we show what type of data ASM a 
how this data can be used to enforce a security policy. Using ASM we are able to explore differe 
security and ... 

4 Workshop on architectural support for security and anti-virus (WASSAV Using instruction b 

.counter code.in|ec^^ 
^ l^ilena l^ilenl<ovic, Aleksandar i^ilenkovlc, Emil Jovanov 

March 2005 ACM SIGARCH Computer Architecture News, volume 33 issue i 
Publisher: ACM Press 

Full text available: ■^.pdf(283 Additional Infornnation: fuJj.citat(on, abstract, references, Mex Jerms 

With more computing platforms connected to the Internet each day, computer system security 
issue. One of the major security problems is execution of malicious injected code. In this paper 
processor extensions that allow execution of trusted instructions only. The proposed extensions 
block signatures in run-time. Signatures are generated during a trusted installation process, usi 
signature register (MISR), and stored in an ... 

^ Security issues for vyireless ATM netvyorks 
<^ Dana! Patiyoot 

^ January 2002 ACM SIGOPS Operating Systems Review, Volume 36 issue i 
Publisher: ACM Press 

Full text available: ^ pdf(1.75 MB) Additional Information: full citation, abstract , references, index terms 

To be able to fulfil the need of user In wireless ATM, the system has to acquire features. One of 
for the wireless ATM is functionality especially the security aspect. There is so far tittle, if not nc 
consideration in the developing of wireless ATM standard. Therefore a wide range of features in 
consideration. This paper tried to define the features of security in wireless ATM networks consi- 
existing fixed ATM netwo ... 

Keywords: security, wireless ATM 



Defensive technoioav: Detection of injected, dynamically generated, and obfuscated malici 
Jesse C. Rabek, Roger I. Khazan, Scott M. Lewandowski, Robert K. Cunningham 
October 2003 Proceedings of the 2003 ACM workshop on Rapid malcode WORM '03 
Publisher: ACM Press 

Full text available: pdf(240.68 K3) Additional Information: fuH citation, abstract, references , index terms 

This paper presents DOME, a host-based technique for detecting several general classes of mali 
executables. DOME uses static analysis to identify the locations (virtual addresses) of system Cc 
executables, and then monitors the executables at runtime to verify that every observed systen 
location identified using static analysis. The power of this technique is that it is simple, practical 
world software, and high ... 

Keywords: anomaly detection, code analysis, dynamic analysis, execution monitoring, intrusio 
code detection, static analysis, system calls 

^ Risks to the public: Risks to the public 
Peter G. Neumann 

^ July 2005 ACM SIGSOFT Software Engineering Notes, volume 30 issue 4 
Publisher: ACM Press 

Full text available: ' Mpdf(15l77 KB) Additional Information: full citation , abstract , Index: terms 
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Edited by Peter G. Neumann (Risks Forum Moderator and Chairman of the ACM Committee on C 
Policy), plus personal contributions by others, as indicated. Opinions expressed are individual n 
organizational, and all of the usual disclaimers apply. We address problems relating to software 
and other circumstances relating to computer systems. To economize on space, we include poin 
online Risks Forum: (R i j) denotes RISKS vol i number ... 

* NeMQrksi„Mobile„ag 
Ambrus Wagner 

April 2004 Proceedings of the 1st conference on Computing frontiers 
Publisher: ACM Press 

Full text available: ^.pdf(28G,99 K3j Additional Information: MLcltation, abstract, references, indexjerms 

The effective use of computing resources in a heterogeneous network of computers is a field of 
this paper a mobile agent-based system is described for distributing modules in such a network 
mean either an entire task or the modules of a task or submodules created by a segmentation c 
module distribution and result collection are given, along with a routing algorithm that allows th 
agents throughout the system. ... 

Keywords: distributed processing, mobile agents 



^ Coiumnsi.Rjsks„toJhe„^ 
^ Peter G. Neumann 

^ March 2002 ACM SIGSOFT Software Engineering Notes, volume 27 issue 2 
Publisher: ACM Press 

Full text available: ■^pdftlJl M3i Additional Information: MLQltation 



10 Operating systems, architectiires. and networks: Using a windows attack intRusion emulat 
COTiputer securjty...^^^^^ 
Donald L. Tobin, Michael S. Ware 

June 2005 Proceedings of the 10th annual SIGCSE conference on Innovation and techni 

science education ITiCSE '05 
Publisher: ACM Press 

Full text available: ^,pdM18,56 Kgi Additional Information: MLpJtation, abstract, reiejences, jMex temis 

Technology has become a major part of our lives. We are entering an era where almost anyone 
must have certain fundamental knowledge on how to protect themselves from attacks while on! 
describe AWARE, an emulator designed to teach either experienced or casual Windows XP users 
supplied tools to detect potential attacks on their system resources. Our system also has built-ii 
educate the user during their simulated attacks. 

Keywords: computer security, intrusion detection, security education 



jntrusjon.detectton 




David Brumley, Li-Hao Liu, Pongsin Poosankam, Dawn Song 

March 2006 Proceedings of the 2006 ACM Symposium on Information, computer and corr 



security ASIACCS '06 
Publisher: ACM Press 

Full text available: ^.pdf(72M2 K3J Additional Information: MLcMion, abstract references, jMex tenris 

We give the first systematic investigation of the design space of worm defense systenn strategic 
by providing a taxonomy of defense strategies by abstracting away implementation-dependent 
details and concentrating on the fundamental properties of each defense category. Our taxonon 
the key parameters for each strategy that determine its effectiveness. We provide a theoretical 
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understanding how these parameters interact ... 

Keywords: antibody, blacklisting, defense strategy analysis, local containment, proactive prote 
propagation, worm taxonomy, worms 



.!Dtrusjon„deteMQn..an 

Manasi Bhattacharyya, Shiomo Hershkop, Eleazar Eskin 

September 2002 Proceedings of the 2002 workshop on New security paradigms 
Publisher: ACM Press 

Full text available: ^.pdf(7M:lS K3) Additional Information: fult.citation, abstract, r^ierences, clting.s, inde 

Despite the use of state of the art methods to protect against malicious programs, they continu 
damage computer systems around the world. In this paper we present MET, the Malicious Email 
designed to automatically report statistics on the flow behavior of malicious software delivered ' 
both at a local and global level. MET can help reduce the spread of malicious software worldwid< 
replicating viruses, as well as provide furth ... 

Keywords: anti-virus, email attachment, email tracking, virus detection 



13 Special section on data mining for intrusion detection and threat analysis: Data mining-bas 

^ Salvatore J. Stolfo, Wenke Lee, Philip K. Chan, Wei Fan, Eleazar Eskin 
December 2001 ACM SIGMOD Record, volume 30 issue 4 

Publisher: ACM Press 

Full text available: ■^pdfCl.OS.MBi Additional Information: MLeitatiP.-}., refeliences, citings, Indexjenm 



liiustratiyejisks^^ 
: Peter G. Neumann 

January 1996 ACM SIGSOFT Software Engineering Notes, volume 21 issue 1 
Publisher: ACM Press 

Full text available: ■^pdfJZM-MS} Additional Information: MLcjtation 



^ ^ A J.axongniy;. of computer 

Carl E. Landwehr, Alan R. Bull, John P. McDermott, Williann S. Choi 
^ September 1994 ACM Computing Surveys (CSUR), volume 26 issue 3 

Publisher: ACM Press 

Full text available: '^pdftSJl.MS) Additional Information: MLcitation, abstract, Mersnces, citinas, ind? 

An organized record of actual flaws can be useful to computer system designers, programmers, 
administrators, and users. This survey provides a taxonomy for computer program security flaw 
that documents 50 actual security flaws. These flaws have all been described previously in the ( 
widely separated places. For those new to the field of computer security, they provide a good in 
characteristics of security flaws and how they ... 

Keywords: error/defect classification, security flaw, taxonomy 



Prepared, testimony„and 
Marc Rotenberg 

March 1990 ACM SIGCAS Computers and Society, Volume 20 issue 1 
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Publisher: ACM Press 

Full text available: ^.pdf{l,59 MB). 



Additional Information: full citation, index terms 



"•7 ANNOD: a navigator of natural-language organized (textua!) data 
Robert E. Williamson 

^ June 1985 Proceedings of the 8th annual international ACM SIGIR conference on Resea 
development in information retrieval 

Publisher: ACM Press 

Full text available: '^i>df£830,AS..KB) Additional Information: fuj], citation, abstra.ct, references 

ANNOD is the name of a system developed at the National Library of Medicine (NLM), which imf 
linguistic and empirical techniques that perririit retrieval of natural language information in respc 
language queries. The system is based on Dr. Gerard Salton's SMART [1] document retrieval sy 
implemented on a mini-computer as part of an Interactive TExt Management System, ITEMS. [2 
with retrieval of information from NLM's Hepatitis ... 



18 



Behavior-based modeling and its application to Email analysis 

Salvatore J. Stolfo, Shiomo Hershkop, Chia-Wei Hu, Wei-Jen Li, Olivier Nimeskern, Ke Wang 
May 2006 ACM Transactions on Internet Technology (TOIT), Volume 6 issue 2 
Publisher: ACM Press 

Full text available: ' ^pdf(1.25 MB) Additional Information: M\ citation, abstract, references, index terms 

The Email Mining Toolkit (EMT) is a data mining system that computes behavior profiles or mod 
accounts. These models may be used for a multitude of tasks including forensic analyses and d( 
to law enforcement and intelligence agencies, as well for as other typical tasks such as virus an' 
demonstrate the power of the methods, we focus on the application of these models to detect tl 
viral propagation without "c ... 

Keywords: Email virus propagations, anomaly detection, behavior profiling 



How to withstand mobile virus attacks (extended abstract) 
Rafail Ostrovsky, Moti Yung 

July 1991 Proceedings of the tenth annual ACM symposium on Principles of distributed 
■91 

Publisher: ACM Press 

Full text available: * gDdf^099.57 K3) Additional Information: full citation , references , citings , index terms 



20 Legally speaking 
Rosalie Steier 

June 1989 Communications of the ACM, Volume 32 issue 6 
Publisher: ACM Press 

Full text available: pdff746.76 KB) Additional Information: full citation, index terms 
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